Athena SWG (Secure Web Gateway)

Athena SWG (formerly Internet Access Gateway) ensures visibility and control across the network, detecting risks like unauthorized access, non-compliant activities, and data leaks to manage endpoints.
{{ $t('productDocDetail.guideClickSwitch') }}
{{ $t('productDocDetail.know') }}
{{ $t('productDocDetail.dontRemind') }}
13.0.120
{{sendMatomoQuery("Athena SWG (Secure Web Gateway)","SOCKS5 Proxy")}}

SOCKS5 Proxy

{{ $t('productDocDetail.updateTime') }}: 2025-12-29

To add a new SOCKS5 proxy, click Add, select SOCKS5 Proxy, and configure the parameters on the following page:

Enable: Select this option to enable this SOCKS5 proxy.

Name: Specifies a different name for this SOCKS5 proxy.

Description: Description of the SOCKS5 proxy.

Object: It allows you to specify the source IP group.

Source: Specifies the IP group. The default is the All group. You can also select one or more IP groups specified in System > Object > IP Address Database[A24][25].

Dst Domain: Specifies the destination domain names. Default is All.

Options: It allows you to specify the action and proxy IP address for this SOCKS5 proxy.

Action: Specifies an action, Allow or Reject[A26][27]. Default is Allow.

Cascading Proxy Server: Default is None. You can specify or add a cascading proxy server to use the cascading proxy. For more information about cascading proxy servers, refer to Cascading Proxy Servers section in this Chapter.

Proxy IP: Specifies the IP address of the outgoing interface that proxy data go through. If you select Auto, the proxy IP address will be automatically chosen. [LCH28][29]You can also select a specific IP address from the pull-down list. In the list, there are IP addresses of VLAN interfaces, WAN interfaces, bridge interfaces, DMZ interfaces, and the interfaces for Single Arm mode (exclusive of IP addresses of LAN interfaces ).

If none of the proxy services (HTTP proxy, SOCKS4 proxy, and SOCKS5 proxy) is enabled, there is a prompt on the Proxies page showing No proxy will take effect, for no proxy service is enabled.

The proxy is matched from top to bottom, and only one proxy will be matched by one connection.

A maximum of 512 entries is allowed.

Even though no proxy is created, the proxy services(HTTP proxy, SOCKS4 proxy, or SOCKS5 proxy) are enabled. The data will also go through the corresponding proxy server because the data not configured with any proxy are allowed to use a proxy by default.